PT-2026-55982 · Gimp · Gimp

·

CVE-2026-59089

·

Published

2026-07-06

·

Updated

2026-08-21

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GIMP (affected versions not specified)
Description The PlayStation TIM loader, which handles PlayStation image files, contains an integer overflow when calculating the size of the Color Look-Up Table (CLUT). This occurs during the multiplication of the num colors and num cluts variables, both of which are 16-bit unsigned short integers. A specially crafted image file can trigger this overflow, leading to undefined behavior and causing the plug-in to abort, which results in a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-59089
OESA-2026-3095
OPENSUSE-SU-2026:11264-1

Affected Products

Gimp